UESRC A.I CyberSecurity Scoring
UESRC
Company Information
Website:https://uscc.gov/
Employees number:64
Number of followers:8,629
NAICS:
Industry Type:Government Relations
Homepage:uscc.gov
UESRC Risk Score (AI oriented)
Between 600 and 649
UESRCGovernment Relations
Updated:
12/05/2026
12/05/2026
616/1000
Poor
Caa
UESRC Global Score (TPRM)
xxxx
UESRCGovernment Relations
Score locked

UESRCPoor
Current Score
616Caa (POOR)
01000
4 incidents
-38.5 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JULY 2026
624
JUNE 2026
621
MAY 2026
674
Cyber Attack
11 May 2026 • UESRC
Google and U.S. telecommunications providers: Opinion | I Ran the N.S.A. This Is How to Defeat China’s Hacker Army.
China’s Cyber Espionage Campaigns Target U.S. Critical Infrastructure and Intellectual Property
616
CRITICAL-58
U.SGOO1778560014
China’s Cyber Espionage Campaigns Target U.S. Critical Infrastructure and Intellectual Property
A growing cyber threat from China has exposed vulnerabilities in America’s critical infrastructure and corporate networks, prompting calls for a stronger, coordinated defense strategy. State-sponsored hacking groups, including Volt Typhoon and Salt Typhoon, have infiltrated hundreds of U.S. utility systems and telecommunications providers, positioning malware to disrupt water and electrical supplies while intercepting communications from senior officials and millions of Americans.
Beyond sabotage, China-backed actors continue to steal $225 billion to $600 billion in U.S. intellectual property annually, according to a 2017 report by the Commission on the Theft of American Intellectual Property. The scale of these operations underscores the limitations of the current voluntary information-sharing model between private companies and the government, which has proven insufficient in countering persistent threats.
A potential solution emerged in February 2026, when Google disrupted a Chinese espionage campaign targeting 53 organizations across 42 nations. By cutting off attackers’ cloud storage access, revoking network permissions, and neutralizing their command-and-control tools, Google demonstrated how private-sector intervention could achieve in days what years of government advisories could not. This incident highlights the need for a shared responsibility framework, where tech and cybersecurity firms proactively identify and neutralize threats similar to how the banking industry combats fraud.
However, legal ambiguities have deterred some companies from taking decisive action. To address this, policymakers are considering updates to cybersecurity laws, including explicit authorization for private-sector disruption operations against foreign state actors. Proposals also include establishing a specialized court, modeled after the Foreign Intelligence Surveillance Court (FISC), to oversee and approve such operations a recommendation from the Center for Strategic and International Studies (CSIS). These changes aim to empower companies to act without fear of legal repercussions while maintaining accountability.
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
DATA BREACH
REFERENCES
APRIL 2026
691
Cyber Attack
01 Apr 2026 • UESRC
U.S. companies: US accuses China of 'industrial-scale' campaigns to steal AI secrets ahead of Trump's Beijing trip
U.S. Accuses China of Large-Scale AI Espionage Ahead of Trump’s Beijing Visit
672
CRITICAL-19
U.S1777034696
U.S. Accuses China of Large-Scale AI Espionage Ahead of Trump’s Beijing Visit
The U.S. has accused China of conducting "industrial-scale" cyber campaigns to steal American artificial intelligence (AI) secrets, escalating tensions just weeks before former President Donald Trump’s planned visit to Beijing. The allegations highlight a growing "AI arms race," with U.S. officials warning that the nation controlling AI advancements could dominate future technological and economic landscapes.
According to reports, China is leveraging its vast intelligence apparatus to target U.S. companies, aiming to acquire sensitive AI research and proprietary data. The accusations come amid broader geopolitical friction, including trade disputes and military posturing in regions like the Strait of Hormuz, where U.S. forces have intercepted Iranian-linked vessels transporting sanctioned oil.
The timing of the allegations just ahead of high-level diplomatic engagements underscores the strategic stakes of AI development, with implications for national security, economic competitiveness, and global influence. No specific details on the scope or methods of the alleged espionage have been disclosed.
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
DATA BREACH
REFERENCES
MARCH 2026
691
FEBRUARY 2026
690
JANUARY 2026
689
DECEMBER 2025
687
NOVEMBER 2025
686
OCTOBER 2025
684
SEPTEMBER 2025
683
AUGUST 2025
681
JULY 2025
697
Cyber Attack
01 Jul 2025 • UESRC
U.S. universities: Italy extradites alleged Chinese state hacker to US
Chinese National Extradited to U.S. Over Alleged State-Backed Cyberattacks on COVID-19 Research
678
CRITICAL-19
U.S1777308160
Chinese National Extradited to U.S. Over Alleged State-Backed Cyberattacks on COVID-19 Research
A Chinese national, Xu Zewei, was extradited from Milan to the U.S. on Saturday after Italian authorities arrested him in July 2025. Xu faces charges of wire fraud, aggravated identity theft, and unauthorized access to protected computers, linked to his alleged role in a Chinese state-backed hacking group.
U.S. officials accuse Xu of participating in cyber intrusions between February 2020 and June 2021, including the widespread HAFNIUM (Silk Typhoon) attacks that compromised thousands of systems globally. The group, allegedly directed by China’s Ministry of State Security (MSS) and Shanghai State Security Bureau (SSSB), targeted U.S. universities, immunologists, and virologists working on COVID-19 vaccine research. Court documents claim Xu breached a Texas university’s network and reported findings to SSSB supervisors.
The HAFNIUM campaign, which exploited vulnerabilities in Microsoft Exchange Servers, affected over 60,000 U.S. entities, with more than 12,700 successfully compromised, according to the FBI. Xu’s alleged co-conspirator, Zhang Yu, remains at large.
Xu, who denies involvement, was detained while vacationing in Milan with his wife. His extradition drew criticism from China’s Foreign Ministry. If convicted on all charges, he faces up to 77 years in prison. The case underscores ongoing tensions over state-sponsored cyber espionage targeting critical research and infrastructure.
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
DATA BREACH
REFERENCES
MAY 2025
754
Breach
01 May 2025 • UESRC
Telecommunications Providers and U.S. Government Surveillance System: FBI labels suspected China hack of law enforcement data 'a major cyber incident'
Chinese Cyber Intrusion into U.S. Government Surveillance System
695
CRITICAL-59
CHIU.S1775183062
FBI Declares Chinese Cyber Intrusion a "Major Incident" Amid National Security Concerns
The FBI has classified a suspected Chinese cyber intrusion into a U.S. government surveillance system as a "major incident," citing risks to national security. According to senior law enforcement officials and sources familiar with the matter, the breach compromised sensitive law enforcement data, prompting the FBI to brief lawmakers on the incident.
The intrusion is believed to employ tactics similar to those used by Salt Typhoon, a China-linked hacking group uncovered in 2024. That campaign, one of the largest intelligence compromises in U.S. history, breached major telecommunications providers, stealing phone records of millions of Americans and FBI wiretap data. Under the 1994 Communications Assistance for Law Enforcement Act (CALEA), telecoms must maintain surveillance systems for court-ordered wiretaps systems that Salt Typhoon accessed in 2024. China has denied involvement in the operation.
Former officials describe the latest breach as part of a broader pattern of undeterred Chinese cyber operations, despite high-profile exposures like Salt Typhoon and diplomatic efforts to ease tensions. A former senior cybersecurity official noted that adversaries perceive U.S. defenses as weakened, particularly amid federal workforce reductions.
Sen. Mark Warner (D-Va.), vice chair of the Senate Intelligence Committee, warned that the incident reflects a persistent threat from China and other cyber adversaries, who continue to exploit vulnerabilities in U.S. systems. He criticized recent cutbacks in cybersecurity staffing at agencies like the FBI and CISA, arguing that such reductions undermine national defenses at a critical time.
Former FBI cyber official Cynthia Kaiser confirmed that China has long targeted U.S. communications to track intelligence and law enforcement activities. The latest intrusion was discovered after her departure from the agency in May. The FBI and CISA have not commented on the matter. The incident was first reported by Politico.
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
DATA BREACH
REFERENCES
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for UESRC ??
What was UESRC's A.I Rankiteo Cyber Score in June 2026 ??
What was UESRC's A.I Rankiteo Cyber Score in May 2026 ??
What was UESRC's A.I Rankiteo Cyber Score in April 2026 ??
What was UESRC's A.I Rankiteo Cyber Score in March 2026 ??
What was UESRC's A.I Rankiteo Cyber Score in February 2026 ??
What was UESRC's A.I Rankiteo Cyber Score in January 2026 ??
What was UESRC's A.I Rankiteo Cyber Score in December 2025 ??
What was UESRC's A.I Rankiteo Cyber Score in November 2025 ??
What was UESRC's A.I Rankiteo Cyber Score in October 2025 ??
What was UESRC's A.I Rankiteo Cyber Score in September 2025 ??
What was UESRC's A.I Rankiteo Cyber Score in August 2025 ??
What is the average per-incident point impact on UESRC's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with UESRC ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view UESRC's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?